Technical Information
- [<HKLM>\System\CurrentControlSet\Services\DBKDRVR54] 'ImagePath' = '<SYSTEM32>\mydri.sys'
- [<HKLM>\SYSTEM\CurrentControlSet\Services\SIMOSVXB] 'ImagePath' = '<DRIVERS>\SIMOSVXB.sys'
- 'DBKDRVR54' <SYSTEM32>\.\mydri.sys
- 'SIMOSVXB' <DRIVERS>\SIMOSVXB.sys
- %WINDIR%\syswow64\jedata.dll
- <Current directory>\äö¾ç.skn
- <Current directory>\s.exe
- %WINDIR%\syswow64\mydri.sys
- %WINDIR%\syswow64\drivers\simosvxb.sys
- <Current directory>\s.exe
- %WINDIR%\syswow64\mydri.sys
- <Current directory>\äö¾ç.skn
- %WINDIR%\syswow64\drivers\simosvxb.sys
- http://xu#.##login2.qq.com/cgi-bin/qlogin?do#####################################################################################################################################################...
- http://oc##.dcocsp.cn/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTHv1Dj%2BciPJEWH5JNtwL5Y07mRqwQUxBF%2BiECGwkG%2FZfMa4bRTQKOr7H0CEANt5Qocvo8rvOeEoYlUMtE%3D
- http://cr#.##gicert-cn.com/DigiCertGlobalRootCA.crl
- http://oc##.dcocsp.cn/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAh%2BGPuPqpJ%2B6HYKDYmC9RI%3D
- http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
- DNS ASK xu#.##login2.qq.com
- DNS ASK cr#.##gicert-cn.com
- DNS ASK oc##.dcocsp.cn
- DNS ASK microsoft.com